File _patchinfo of Package patchinfo.30718
<patchinfo incident="30718"> <issue tracker="cve" id="2020-8166"/> <issue tracker="bnc" id="1215707">The hawk test is broken on all SLE15 versions with the new update of rubygem-actionpack-5_1</issue> <issue tracker="bnc" id="1172182">VUL-1: CVE-2020-8166: rubygem-actionpack-4_2,rubygem-actionpack-5_1: Ability to forge per-form CSRF tokens given a global CSRF token</issue> <packager>pgajdos</packager> <rating>low</rating> <category>security</category> <summary>Security update for rubygem-actionpack-5_1</summary> <description>This update for rubygem-actionpack-5_1 fixes the following issues: - CVE-2020-8166: Fixed ability to forge per-form CSRF tokens given a global CSRF (bsc#1172182). </description> </patchinfo>